Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Cybersecurity Vulnerability Management Engineer

General Motors Proving Ground

Job Description

The Role:

As a Senior Cybersecurity Vulnerability Engineer, you will serve as a highly capable individual contributor responsible for designing, implementing, and improving cybersecurity capabilities that protect GM's risk domains of people, products, partners, platforms, and production.

The successful candidate is a senior experienced professional who can independently assess complex vulnerability and exposure risks, translate threat intelligence and technical findings into actionable remediation priorities, and influence outcomes across infrastructure, cloud, application, manufacturing, and security stakeholder groups. The senior engineer will have significant functional impact through risk-based decision-making, operational leadership, and mentorship of engineers and remediation partners.

You will solve diverse, non-standard security problems; translate broad challenges into implementable initiatives; and drive delivery across teams through technical leadership, sound judgment, and influence. This role has significant operational impact across the cybersecurity organization that serves as a mentor and resource for other team members.

What You'll Do:

  • Lead engineering, operational improvement, and continuous maturity of GM Vulnerability Management core services across enterprise infrastructure, client endpoints, multi-cloud, and AI security threat exposure domains.

  • Serve as a senior individual contributor for Enterprise Data Center Infrastructure vulnerability management, including server, endpoint, network, virtualization, patch coordination, exception handling, on-prem asset hygiene, and remediation prioritization for critical infrastructure.

  • Drive client endpoint vulnerability management by reducing endpoint risk through continuous detection, patching, browser and software update compliance, control enforcement, and remediation guidance across corporate and manufacturing endpoint environments.

  • Lead multi-cloud vulnerability management across Azure, AWS, and GCP, including workload exposure, misconfiguration correlation, cloud VM risk, container image and runtime exposure, and cloud-to-business criticality mapping to support risk-based remediation.

  • Build and mature AI security threat vulnerability management capabilities for AI workloads, model supply chain risk, prompt injection, data leakage, agent permissions, tool-use guardrails, model and runtime control validation, and secure rollout patterns for internal AI capabilities.

  • Correlate scanner findings with asset, business, network, telemetry, identity, threat-intelligence, and SBOM context to improve prioritization accuracy and focus remediation on exposures most likely to create business risk.

  • Apply threat intelligence and exploitability analytics, including exposure context, attack-path factors, and evidence of exploitation, to move prioritization beyond severity-only scoring.

  • Partner with infrastructure, endpoint, cloud platform, manufacturing, application, and Security Fitness stakeholders to convert findings into actionable remediation plans, drive accountability, and accelerate closure of urgent, critical, and high-risk issues.

  • Support and improve Vulnerability core functions including asset discovery and inventory, vulnerability scanning and assessment, threat intelligence and risk context, prioritization and risk scoring, remediation and patch coordination, exception management, reporting, dashboards, governance, integration, automation, and continuous improvement.

  • Contribute to workflow integration and automation across detection, security unification tools, automated patching orchestration, and related platforms, while maintaining appropriate guardrails and human approval for meaningful changes to critical environments.

  • Provide technical leadership, mentoring, and consultative support to less experienced engineers and aligned remediation owners.

  • Protect sensitive company, employee, and customer information and consistently operate in alignment with GM values, behaviors, and policies.

Your Skills & Abilities (Required Qualifications):

  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, Information Technology, or a related field, or equivalent practical experience.

  • Significant professional experience in cybersecurity engineering, vulnerability management, security operations, cloud security, infrastructure security, or related domains.

  • Proven expertise in Enterprise Data Center Infrastructure vulnerability management, including servers, network-attached infrastructure, virtualization, patch coordination, exception handling, and remediation prioritization for enterprise environments.

  • Proven expertise in client endpoint vulnerability management, including endpoint controls, patching, software and browser update compliance, detection coverage, and remediation at scale.

  • Proven expertise in multi-cloud vulnerability management across Azure, AWS, and GCP, including cloud workload exposure, misconfigurations, container image and runtime risks, and risk-based remediation workflows.

  • Proven expertise in AI security threat vulnerability management, including AI workload inventory, model supply chain risk, prompt injection, data leakage, model misuse, agent abuse scenarios, runtime behavior review, and control validation.

  • Experience correlating vulnerability findings with business, asset, identity, telemetry, network, SBOM, and threat-intelligence context to support risk-based prioritization and exploitability-focused decision-making.

  • Experience with enterprise vulnerability management platforms, scanners, and workflow tooling such as Qualys, Tenable, Wiz, ServiceNow or comparable platforms.

  • Strong understanding of remediation governance, exception management, dashboarding, metrics, and continuous improvement within a mature vulnerability management program.

  • Demonstrated ability to work independently, exercise strong judgment, and deliver results with minimal guidance.

  • Proven ability to solve complex, ambiguous problems using structured analysis and innovative approaches.

  • Experience leading initiatives that span multiple teams, stakeholders, or technical domains.

  • Strong communication and influence skills, including the ability to present recommendations supported by data and analysis.

  • Commitment to protecting sensitive information, speaking up about risks, and operating with integrity.

  • Demonstrated ability to run an end-to-end vulnerability intelligence workflow for a high-profile CVE, from initial awareness through intelligence collection, environmental relevance scoping, contextual scoring, and tailored outputs for executive and technical stakeholders.

  • Strong judgment in risk-based prioritization beyond CVSS, including the ability to weigh EPSS, CISA KEV status, active exploitation, exploit maturity, asset criticality, internet exposure, and compensating controls to assign and defend a GM-specific priority.

  • Ability to assess exploitability when public information is incomplete by reasoning through attack complexity, required privileges, user interaction, environmental preconditions, and the effectiveness of the control stack, then updating recommendations as PoCs and tooling emerge.

  • Experience mapping newly disclosed vulnerabilities to complex enterprise environments spanning multiple operating systems, cloud platforms, infrastructure, and third-party products using CMDB, scanner outputs, SBOMs, cloud inventories.

  • Strong written and verbal communication skills for producing high-quality vulnerability briefs that clearly summarize impact, affected assets, exploit likelihood, recommended actions, and remediation timelines for different audiences.

  • Experience designing or improving a vulnerability intelligence pipeline, including source ingestion, normalization, deduplication, enrichment with internal context, scoring, and publishing into tickets, dashboards, SOC workflows, and leadership updates.

  • Proven ability to respond to high-impact 0-days in critical third-party products by rapidly validating noisy intelligence, scoping exposure, recommending interim mitigations, and structuring updates during the first 24 to 72 hours.

  • Ability to reconcile conflicting vulnerability data across vendors, scanners, commercial feeds, internal observations, document rationale, and establish a defensible environment-specific rating.

  • Experience defining and using leadership metrics and dashboards that combine scanner, CMDB, ticketing, and threat-intelligence data to track remediation urgency, business exposure, and time-to-remediate.

  • Strong partnership skills with SOC and incident response teams to translate vulnerability intelligence into targeted detection, containment, remediation, and post-incident scoring improvements.

  • Technical depth to interpret exploit code, TTPs, and attacker tradecraft when needed, and adjust recommendations when practical exploitability differs from initial assumptions.

  • Knowledge of the regulatory landscape and intricacies related to industry cybersecurity standards and best practices (examples include: NIST CSF, SSDF, NIST 800-53, ISO 270001/2, ISO/IEC 15.x.x, NHTSA Best Practices, ISO/SAE 21434, SOC2, etc) and state privacy laws

  • Experience with policy/standard process creation and acceptance

What Will Give You A Competitive Edge (Preferred Qualifications):

  • Experience in large-scale enterprise, automotive, manufacturing, mobility, or regulated environments.

  • Relevant certifications such as CISSP, CISM, CCSP, GIAC, AWS Security, Azure Security, or equivalent.

  • Experience with cloud platforms, DevSecOps, security automation, detection engineering, threat modeling, incident response, or vulnerability remediation.

  • Experience influencing strategy, operating models, and process improvements beyond an immediate team or project scope.

  • Expertise in managing and leading complex projects and assignments with a high degree of autonomy, confidentiality, and accountability for results?

  • Ability to work independently with minimal supervision?

  • Operate with high level of time management and prioritization skills.

  • Must be comfortable working with and at times, managing Senior Leaders and Executives within the organization?

  • A proven & successful track record in navigating cross functional teams to achieve desired results?in a highly matrixed organization.

  • Hands-on Linux and Windows security administration experience

#LI-SB3

GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc).

This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}.

This job may be eligible for relocation benefits.

About GM

Our vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all.

Why Join Us

We believe we all must make a choice every day - individually and collectively - to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team.

Benefits Overview

From day one, we're looking out for your well-being-at work and at home-so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources ( .

Non-Discrimination and Equal Employment Opportunities (U.S.)

General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers.

All employment decisions are made on a non-discriminatory basis without regard to sex, race, color, national origin, citizenship status, religion, age, disability, pregnancy or maternity status, sexual orientation, gender identity, status as a veteran or protected veteran, or any other similarly protected status in accordance with federal, state and local laws.

We encourage interested candidates to review the key responsibilities and qualifications for each role and apply for any positions that match their skills and capabilities. Applicants in the recruitment process may be required, where applicable, to successfully complete a role-related assessment(s) and/or a pre-employment screening prior to beginning employment. To learn more, visit How we Hire ( .

Accommodations

General Motors offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email (View email address on click.appcast.io) us or call us at View phone number on click.appcast.io. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.

We are leading the change to make our world better, safer and more equitable for all through our actions and how we behave. Learn more about:

Our Company (

Our Culture

How we hire??????? (

Our diverse team of employees bring their collective passion for engineering, technology and design to deliver on our vision of a world with Zero Crashes, Zero Emissions and Zero Congestion. We are looking for adventure-seekers and imaginative thought leaders to help us transform mobility.

Explore our global locations (

We are determined to lead change for the world through technology, ingenuity and harnessing the creativity of our diverse team. Join us to help lead the change that will make our world better, safer and more equitable for all by becoming a member of GM's Talent Community (beamery.com) ( . As a part of our Talent Community, you will receive updates about GM, open roles, career insights and more.

Please note that filling out the form below will not add you to our Talent Community automatically; you will need to use the link above. If you are seeking to apply to a specific role, we encourage you to click "Apply Now" on the job posting of interest.

The policy of General Motors is to extend opportunities to qualified applicants and employees on an equal basis regardless of an individual's age, race, color, sex, religion, national origin, disability, sexual orientation, gender identity/expression or veteran status. Additionally, General Motors is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email us at View email address on click.appcast.io .In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Cybersecurity Vulnerability Management Engineer in Warren, MI vacancy
  • $80k - $120k

     ...years of experience in information security, technology risk management or related field. Demonstrated ability configuring and...  ...risk mitigation strategies. Experience with vulnerability and configuration compliance scanning tools such as Symantec,... 
    Senior

    Tata Consultancy Services

    Detroit, MI
    5 days ago
  •  ...Job Description Job Description Description Join Our Team as a Senior Project Manager! Data Center | South Lyon, Michigan Slifco Electric is a premier electrical contracting firm serving the Automotive, Heavy Industrial, and Mission Critical sectors. We specialize... 
    Senior
    For contractors
    For subcontractor
    Work at office

    Slifco Electric

    Sterling Heights, MI
    12 days ago
  • General Motors in Warren, Michigan, is seeking a Senior Systems Engineer for the Software Validation team. This hybrid role focuses on developing strategies for fault management in autonomous vehicles. You will apply your systems engineering expertise in collaboration... 
    Senior

    General Motors

    Warren, MI
    2 days ago
  •  ...Dynamics Land Systems in Sterling Heights, Michigan is seeking a Senior Systems Engineer to support Systems Engineering activities focused on timely...  ...products. Responsibilities include coordinating meetings, managing requirements, and overseeing system validation. The ideal... 
    Senior

    General Dynamics Land Systems

    Sterling Heights, MI
    1 day ago
  • $77.5k - $140.9k

     ...build a better working world. Job Title: CyberSecurity SIEM Engineer (Senior SDC) About the job At EY, you’ll...  ...to their growingly intricate risks and vulnerabilities. As part of our Cyber Threat and Vulnerability Management (TVM) team you will play a pivotal role... 
    Senior
    Work experience placement
    Summer holiday
    Flexible hours

    EY

    Detroit, MI
    1 day ago
  • Harley-Ellis-Devereaux is seeking an experienced Structural Engineer III in Royal Oak, MI. The ideal candidate will have 4-8 years of structural engineering experience, be a licensed PE, and will lead technical roles on various projects. The role requires proficiency in... 
    Senior

    Harley-Ellis-Devereaux

    Royal Oak, MI
    11 hours ago
  • A leading engineering company based in Sterling Heights, Michigan, is looking for a Senior Project Engineer to lead complex projects in developing high-performance suspension...  ...at least 5 years of experience in project management. Responsibilities include overseeing project... 
    Senior
    Remote work

    Peskind Executive Search

    Sterling Heights, MI
    11 hours ago
  • An automotive industry leader in Warren, Michigan is seeking a Senior Hardware Design Engineer to lead the electronic component library. You will create and approve schematic symbols and PCB footprints while collaborating with various engineering teams. This role requires... 
    Senior

    General Motors

    Warren, MI
    4 days ago
  • $78 per hour

    A professional staffing agency is seeking a Thermal Management Engineer in Sterling Heights, MI. This role involves leading the design, development, and release of subsystem components for HVAC systems. Candidates should possess a Bachelor's in Mechanical Engineering and... 
    Senior
    Monday to Friday

    Trillium Staffing

    Sterling Heights, MI
    11 hours ago
  • A manufacturing company in Sterling Heights seeks a Quality Engineer responsible for overseeing the Quality Team and ensuring compliance...  ...requirements and industry standards. The role includes managing inspection processes, driving continuous improvement, and leading... 
    Senior

    J.G. Kern Enterprises Inc.

    Sterling Heights, MI
    4 days ago
  •  ...automotive manufacturer located in Warren, Michigan, is seeking a Senior Controls Engineer. This role focuses on leading program execution for machine...  ...years of industry experience. Responsibilities include managing program launches, ensuring high-quality production, and... 
    Senior

    General Motors

    Warren, MI
    2 days ago
  • Slifco-Electric in Sterling Heights is seeking an experienced Electrical Project Manager to lead complex electrical construction projects. You will manage all aspects of project delivery, ensuring compliance with safety standards while maintaining strong client relationships... 
    Senior

    Slifco-Electric

    Sterling Heights, MI
    4 days ago
  • A leading architectural and engineering design firm is seeking a Senior Electrical Engineer in Royal Oak, Michigan. The ideal candidate will lead the design of electrical systems for commercial and K-12 educational projects, oversee project timelines, and mentor junior... 
    Senior

    OTT Financial Group

    Royal Oak, MI
    11 hours ago
  • $148k - $226.2k

     ...Job Description Hybrid: This role is categorized as hybrid/remote Role: As a Senior Systems Engineer, Fault Management, on the Software Validation team within the autonomous vehicle (AV) organization, you will play a critical role in leading the strategy and execution... 
    Senior
    Local area
    Remote work
    Work from home
    Relocation
    Relocation package
    Flexible hours

    General Motors

    Warren, MI
    1 day ago
  • An electrical contracting company in Sterling Heights, MI, seeks a Senior Electrical Estimator / Preconstruction Manager to support growth in commercial and light industrial work. The role focuses on accurate estimating, scope development, and project coordination. Ideal... 
    Senior

    White Light Electric

    Sterling Heights, MI
    4 days ago
  • Slifco-Electric, located in Sterling Heights, is seeking a Senior Purchasing Agent. In this role, you'll lead purchasing activities for electrical construction projects and manage vendor relationships to support procurement operations. Ideal candidates should have over... 
    Senior

    Slifco-Electric

    Sterling Heights, MI
    2 days ago
  • Manpower Group (USA) is seeking a Controls Engineer 3 in Warren, Michigan. In this role, you will support advanced manufacturing and automation initiatives, collaborating with cross-functional teams and ensuring successful execution of controls projects. Responsibilities... 
    Senior

    Manpower Group (USA)

    Warren, MI
    2 days ago
  • $124k - $280k

     ...Specialty/Competency: Cybersecurity & Privacy Industry/Sector...  ...strategies. They work to identify vulnerabilities, develop secure systems,...  ...of the Cyber Defense and Engineering team, you will lead large-...  ...transformation. As a Senior Manager, you will serve as a trusted... 
    Senior
    Full time
    H1b

    PwC

    Detroit, MI
    5 days ago
  • $77k - $202k

     ...Specialty/Competency: Cybersecurity & Privacy Industry...  ...work to identify vulnerabilities, develop secure systems...  ...and learning how to manage and inspire others. Navigating...  ...resilience. As a Senior Associate, you will...  ...Science, Electrical Engineering, Industrial... 
    Senior
    Full time
    H1b

    PwC

    Detroit, MI
    25 days ago
  • ECS Group of Companies in Detroit is seeking a Principal Engineer for Construction Materials Testing. The ideal candidate will have a Bachelor...  ...include overseeing CMT projects, mentoring team members, and managing client relationships. ECS offers opportunities for career... 
    Senior

    ECS Group of Companies

    Detroit, MI
    4 days ago
  •  ...skilled Security & Compliance Engineer to lead security initiatives...  ...Lifecycle (SDL) practices. Manage encryption tools (e.g.,...  ...build and deployment processes. Vulnerability Management: Monitor CVEs, manage...  ...degree in Computer Science, Cybersecurity, or related field (or... 
    Senior
    Temporary work
    Flexible hours

    Aptiv PLC

    Troy, MI
    2 days ago
  • Henry Ford Health is seeking a Senior Vulnerability Analyst to enhance vulnerability management across the enterprise. The role involves developing assessment plans, supporting projects, and ensuring compliance with policies and regulations. Candidates should have a Bachelor... 
    Senior

    Henry Ford Health

    Detroit, MI
    11 hours ago
  • $106.8k - $194.8k

     ...WAF Operations Solution Engineer PRACTICE DESCRIPTION:...  ...responsible for implementing and managing Web Application Firewall (...  ...will work within a team of cybersecurity professionals to establish...  ...identify potential threats and vulnerabilities. Conduct thorough... 
    Senior
    Summer holiday
    Flexible hours

    EY

    Detroit, MI
    3 days ago
  • $106.8k - $194.8k

    WAF Operations Solution Engineer Location: Anywhere in Country...  ...responsible for implementing and managing Web Application Firewall (...  ...will work within a team of cybersecurity professionals to establish...  ...potential threats and vulnerabilities. Conduct thorough analysis... 
    Senior
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Detroit, MI
    5 days ago
  •  ...Senior Midmarket Account Executive: Zero Trust Antigen Security is a rapidly growing...  ...Distributor specializing in comprehensive cybersecurity solutions. By leveraging top-tier...  ...and reduce risk. As a Microsoft Top 150 Managed Partner and exclusive distributor for a... 
    Senior
    Work experience placement
    Remote work

    Antigen Security

    Royal Oak, MI
    5 days ago
  • DTE Energy is seeking a Senior Engineer responsible for planning and conducting complex engineering activities, applying thorough knowledge of engineering principles. The role includes leading projects, mentoring engineers, and providing solutions for important problems... 
    Senior

    DTE Energy

    Detroit, MI
    3 days ago
  • $77k - $202k

     ...Specialty/Competency: Cybersecurity & Privacy Industry...  ...work to identify vulnerabilities, develop secure systems...  ...and learning how to manage and inspire others. Navigating...  ...strategies. As a Senior Associate, you will...  ...s Degree in Computer Engineering, Computer Programming... 
    Senior
    Full time
    H1b

    PwC

    Detroit, MI
    1 day ago
  • $44.68 - $64.9 per hour

     ...operating costs, and drive sustainability. From program design and management to assessments and decarbonization strategies, we partner...  ...per hour. Requirements Bachelor’s degree in mechanical engineering or closely related discipline with a minimum of seven (7)... 
    Senior
    Hourly pay
    Full time
    Work at office
    Local area
    Work from home

    Energy Sciences

    Berkley, MI
    7 days ago
  • DTE Energy is seeking a Senior Level Engineer to plan and conduct complex engineering-related activities. This hybrid role based in Detroit involves leading teams, developing effective relationships, and solving engineering problems. The ideal candidate will possess a Bachelor... 
    Senior

    DTE Energy

    Detroit, MI
    1 day ago
  • $80k - $120k

     ...information security professional in Detroit, Michigan. The ideal candidate will have at least 8 years of experience in technology risk management and the ability to implement effective risk mitigation strategies. Responsibilities include developing technical controls and... 
    Senior

    Tata Consultancy Services Limited

    Detroit, MI
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Cybersecurity Vulnerability Management Engineer. Be the first to apply!